package com.kuang.controller;

import org.springframework.stereotype.Controller;
import org.springframework.ui.Model;
import org.springframework.web.bind.annotation.RequestMapping;
import org.springframework.web.bind.annotation.RequestParam;
import org.thymeleaf.util.StringUtils;

import javax.servlet.http.HttpSession;

@Controller
public class LoginController {
    @RequestMapping("/user/login")
    public String login(
            @RequestParam("username") String username,
            @RequestParam("password") String password,
            Model model, HttpSession session){
        //具体业务
        //!StringUtils.isEmpty : 判断什么不为空
        if(!StringUtils.isEmpty("username") && "123456".equals(password)){
            session.setAttribute("loginUser",username);
            return "redirect:/main.html"; //redirect : 重定向 难免游览器登录信息暴露
        }else {
            //告诉用户登录失败
            model.addAttribute("msg","用户名或密码输入错误！");
            return "index";
        }
    }

    //注销退出操作请求
    @RequestMapping("/user/logout")
    public String logout(HttpSession session){
        session.invalidate();
        return "redirect:index.html";
    }
}
